DATA PROTECTION POLICY
Purpose:
This policy provides guidance on how NAIVAS will handle the data it collects.
It ensures compliance with data protection laws, safeguards the rights of data subjects, and mitigates risks associated with data breaches.
Policy Statement:
NAIVAS commits to adhering to all relevant Kenyan legislation and applicable global data protection regulations.
The company acknowledges that they must process and use personal data lawfully, legitimately, and responsibly as a fundamental human right.
NAIVAS will protect the rights of data subjects and ensure that any data collected or processed aligns with legal requirements.
All NAIVAS employees must comply with this policy. Any breach may result in disciplinary action.
The Board ensures that adequate and effective systems and processes are in place to safeguard data.
Implementation & Compliance:
NAIVAS will implement measures to securely collect, store, and process personal data.
We will train employees to ensure awareness and compliance with data protection laws.
Employees must report any suspected data breaches immediately to the relevant authorities within NAIVAS.
We will conduct regular audits to assess adherence to this policy and identify areas for improvement.
Review & Amendments:
We will review this policy periodically to reflect changes in legislation and best practices in data protection.
